1 /* crypto/md5/md5_locl.h */
2 /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com)
5 * This package is an SSL implementation written
6 * by Eric Young (eay@cryptsoft.com).
7 * The implementation was written so as to conform with Netscapes SSL.
9 * This library is free for commercial and non-commercial use as long as
10 * the following conditions are aheared to. The following conditions
11 * apply to all code found in this distribution, be it the RC4, RSA,
12 * lhash, DES, etc., code; not just the SSL code. The SSL documentation
13 * included with this distribution is covered by the same copyright terms
14 * except that the holder is Tim Hudson (tjh@cryptsoft.com).
16 * Copyright remains Eric Young's, and as such any Copyright notices in
17 * the code are not to be removed.
18 * If this package is used in a product, Eric Young should be given attribution
19 * as the author of the parts of the library used.
20 * This can be in the form of a textual message at program startup or
21 * in documentation (online or textual) provided with the package.
23 * Redistribution and use in source and binary forms, with or without
24 * modification, are permitted provided that the following conditions
26 * 1. Redistributions of source code must retain the copyright
27 * notice, this list of conditions and the following disclaimer.
28 * 2. Redistributions in binary form must reproduce the above copyright
29 * notice, this list of conditions and the following disclaimer in the
30 * documentation and/or other materials provided with the distribution.
31 * 3. All advertising materials mentioning features or use of this software
32 * must display the following acknowledgement:
33 * "This product includes cryptographic software written by
34 * Eric Young (eay@cryptsoft.com)"
35 * The word 'cryptographic' can be left out if the rouines from the library
36 * being used are not cryptographic related :-).
37 * 4. If you include any Windows specific code (or a derivative thereof) from
38 * the apps directory (application code) you must include an acknowledgement:
39 * "This product includes software written by Tim Hudson (tjh@cryptsoft.com)"
41 * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND
42 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
43 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
44 * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
45 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
46 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
47 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
48 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
49 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
50 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
53 * The licence and distribution terms for any publically available version or
54 * derivative of this code cannot be changed. i.e. this code cannot simply be
55 * copied and put under another distribution licence
56 * [including the GNU Public Licence.]
58 * 03/06/02 brr Removed openssl includes.
59 * 02/18/02 spm Removed #includes of usr headers. Converted printf's to
61 * 05/07/01 dws Commented out the #define that makes bm_md5_block_data_order
62 * the same as bm_md5_block_host_order for x86 platforms.
63 * 04/02/01 dws Original version, based on md5_locl.h. Provides private versions
64 * of the MD5 functions for the Simon behavioral model.
69 #define MD5_LONG_LOG2 2 /* default to 32 bits */
73 # if defined(__i386) || defined(_M_IX86) || defined(__INTEL__)
74 # define md5_block_host_order md5_block_asm_host_order
75 # elif defined(__sparc) && defined(ULTRASPARC)
76 void md5_block_asm_data_order_aligned (N8_PRECOMP_MD5_CTX
*c
, const MD5_LONG
*p
,int num
);
77 # define HASH_BLOCK_DATA_ORDER_ALIGNED md5_block_asm_data_order_aligned
81 void n8_precomp_md5_block_host_order (N8_PRECOMP_MD5_CTX
*c
, const void *p
,int num
);
82 void n8_precomp_md5_block_data_order (N8_PRECOMP_MD5_CTX
*c
, const void *p
,int num
);
84 #if defined(__i386) || defined(_M_IX86) || defined(__INTEL__)
86 * *_block_host_order is expected to handle aligned data while
87 * *_block_data_order - unaligned. As algorithm and host (x86)
88 * are in this case of the same "endianness" these two are
89 * otherwise indistinguishable. But normally you don't want to
90 * call the same function because unaligned access in places
91 * where alignment is expected is usually a "Bad Thing". Indeed,
92 * on RISCs you get punished with BUS ERROR signal or *severe*
93 * performance degradation. Intel CPUs are in turn perfectly
94 * capable of loading unaligned data without such drastic side
95 * effect. Yes, they say it's slower than aligned load, but no
96 * exception is generated and therefore performance degradation
97 * is *incomparable* with RISCs. What we should weight here is
98 * costs of unaligned access against costs of aligning data.
99 * According to my measurements allowing unaligned access results
100 * in ~9% performance improvement on Pentium II operating at
101 * 266MHz. I won't be surprised if the difference will be higher
102 * on faster systems:-)
104 * <appro@fy.chalmers.se>
106 /* #define n8_precomp_md5_block_data_order n8_precomp_md5_block_host_order */
109 #define DATA_ORDER_IS_LITTLE_ENDIAN
111 #define HASH_LONG MD5_LONG
112 #define HASH_LONG_LOG2 MD5_LONG_LOG2
113 #define HASH_CTX N8_PRECOMP_MD5_CTX
114 #define HASH_CBLOCK MD5_CBLOCK
115 #define HASH_LBLOCK MD5_LBLOCK
116 #define HASH_UPDATE n8_precomp_MD5_Update
117 #define HASH_TRANSFORM n8_precomp_MD5_Transform
118 #define HASH_FINAL n8_precomp_MD5_Final
119 #define HASH_MAKE_STRING(c,s) do { \
121 ll=(c)->A; HOST_l2c(ll,(s)); \
122 ll=(c)->B; HOST_l2c(ll,(s)); \
123 ll=(c)->C; HOST_l2c(ll,(s)); \
124 ll=(c)->D; HOST_l2c(ll,(s)); \
126 #define HASH_BLOCK_HOST_ORDER n8_precomp_md5_block_host_order
127 #if !defined(L_ENDIAN) || defined(n8_precomp_md5_block_data_order)
128 #define HASH_BLOCK_DATA_ORDER n8_precomp_md5_block_data_order
130 * Little-endians (Intel and Alpha) feel better without this.
131 * It looks like memcpy does better job than generic
132 * md5_block_data_order on copying-n-aligning input data.
133 * But frankly speaking I didn't expect such result on Alpha.
134 * On the other hand I've got this with egcs-1.0.2 and if
135 * program is compiled with another (better?) compiler it
136 * might turn out other way around.
138 * <appro@fy.chalmers.se>
142 #include "md32_common.h"
145 #define F(x,y,z) (((x) & (y)) | ((~(x)) & (z)))
146 #define G(x,y,z) (((x) & (z)) | ((y) & (~(z))))
149 /* As pointed out by Wei Dai <weidai@eskimo.com>, the above can be
150 * simplified to the code below. Wei attributes these optimizations
151 * to Peter Gutmann's SHS code, and he attributes it to Rich Schroeppel.
153 #define F(b,c,d) ((((c) ^ (d)) & (b)) ^ (d))
154 #define G(b,c,d) ((((b) ^ (c)) & (d)) ^ (c))
155 #define H(b,c,d) ((b) ^ (c) ^ (d))
156 #define I(b,c,d) (((~(d)) | (b)) ^ (c))
159 #define R0(a,b,c,d,k,s,t) { \
160 a+=((k)+(t)+F((b),(c),(d))); \
163 DBG(("Round 0 {A=%08lx B=%08lx C=%08lx D=%08lx}\n", A, B, C, D));
165 #define R1(a,b,c,d,k,s,t) { \
166 a+=((k)+(t)+G((b),(c),(d))); \
169 DBG(("Round 1 {A=%08lx B=%08lx C=%08lx D=%08lx}\n", A, B, C, D));
171 #define R2(a,b,c,d,k,s,t) { \
172 a+=((k)+(t)+H((b),(c),(d))); \
175 DBG(("Round 2 {A=%08lx B=%08lx C=%08lx D=%08lx}\n", A, B, C, D));
177 #define R3(a,b,c,d,k,s,t) { \
178 a+=((k)+(t)+I((b),(c),(d))); \
181 DBG(("Round 3 {A=%08lx B=%08lx C=%08lx D=%08lx}\n", A, B, C, D));
183 #define R0(a,b,c,d,k,s,t) { \
184 a+=((k)+(t)+F((b),(c),(d))); \
188 #define R1(a,b,c,d,k,s,t) { \
189 a+=((k)+(t)+G((b),(c),(d))); \
193 #define R2(a,b,c,d,k,s,t) { \
194 a+=((k)+(t)+H((b),(c),(d))); \
198 #define R3(a,b,c,d,k,s,t) { \
199 a+=((k)+(t)+I((b),(c),(d))); \